An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Ventura 13.7.3, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3. An attacker may be able to cause unexpected system termination or corrupt kernel memory.
The product writes data past the end, or before the beginning, of the intended buffer.
A protocol or its implementation supports interaction between multiple actors and allows those actors to negotiate which algorithm should be used as a protection mechanism such as encryption or authentication, but it does not select the strongest algorithm that is available to both parties.
Link | Tags |
---|---|
https://support.apple.com/en-us/122069 | release notes vendor advisory |
https://support.apple.com/en-us/122073 | release notes vendor advisory |
https://support.apple.com/en-us/122068 | release notes vendor advisory |
https://support.apple.com/en-us/122070 | release notes vendor advisory |
https://support.apple.com/en-us/122066 | release notes vendor advisory |